Isology

Services / ISO Certification Consultancy

ISO Certification Consultancy

ISO certification is a strategic asset — it unlocks tenders, reassures customers and disciplines the way your business runs. We build management systems that are lean, audit-ready and genuinely used by your team, not shelfware that fails at the first surveillance visit.

Who it's for

  • Organisations pursuing first-time UKAS certification
  • Businesses adding a second or third standard to an integrated management system
  • Teams whose existing system is bloated, out of date or failing audits
  • Groups planning multi-site or multi-standard rollout

Our approach

A repeatable, evidence-based method refined over hundreds of engagements.

1. Gap analysis

We benchmark your current processes against every clause of the target ISO standard and produce a prioritised action list — no jargon, no filler.

2. System design & documentation

We author policies, procedures, risk registers and records templates in your voice, mapped clause-by-clause to the standard.

3. Implementation & training

Short, role-based briefings embed the system with the people who actually use it. Evidence starts accumulating from day one.

4. Internal audit & management review

We run the mandatory internal audit and management review using ISO 19011:2026 guidance, then close any findings before the certification body arrives.

5. Stage 1 & Stage 2 assessment support

A lead consultant attends UKAS assessment days, manages the auditor and defends evidence — so you pass cleanly.

What you get

Every deliverable is fully branded to your organisation, plain-English and audit-ready.

  • Clause-mapped gap analysis report
  • Full ISO manual, policies and procedures
  • Risk & opportunity register
  • Legal & regulatory compliance register
  • Internal audit programme and reports
  • Management review pack with actions and KPIs
  • Non-conformity and corrective action log
  • Certification body liaison and audit-day support

Typical timeline

Indicative durations — we tailor to your business, sites and existing maturity.

  1. Gap analysis

    1–2 weeks

    On-site or remote assessment, findings report and action plan.

  2. System build

    4–8 weeks

    Documentation authored, tailored and signed off with your leadership team.

  3. Implementation

    4–12 weeks

    Roll-out, training and evidence collection across the business.

  4. Internal audit & review

    2 weeks

    Independent internal audit and formal management review.

  5. Stage 1 & Stage 2 UKAS audit

    4–8 weeks

    Certification body assessment; we attend and defend the system.

Outcomes you can expect

  • First-time UKAS certification with zero major non-conformities
  • A management system your team will actually maintain
  • Reduced tender friction and stronger customer confidence

Scope, editions and important clarifications

ISO 14001:2026 is the current edition

ISO 14001 has been revised and ISO 14001:2026 is now the current edition. New certifications are built to the 2026 text from the outset.

Transition for ISO 14001:2015-certified clients

If you are certified to ISO 14001:2015, certification remains valid through the published transition period, after which 2015 certificates cease to be valid. We run a clause-by-clause delta review against the 2026 text, update your EMS documentation, brief your team on the changes, and schedule the transition audit with your certification body well before the deadline. Confirm the exact end date with your certification body, as it is set by the accreditation rules that apply to your certificate.

Formal standard titles

Information security and privacy standards are jointly published by ISO and IEC, and are correctly cited as ISO/IEC 27001 and ISO/IEC 27701.

Ready to talk about ISO Certification Consultancy?

A 20-minute call with one of our success team is usually enough to scope your route forward.

Book a consultation